Related Threat Clusters
-
China-Nexus APT UAT-7290 Targets South Asia Telecoms in Cyber Espionage Campaign
A new threat actor, UAT-7290, has been identified conducting cyberattacks on telecommunications infrastructure in South Asia. This operation is linked to a China-Nexus state-sponsored advanced persistent threat (APT)…
1 article · Updated January 9, 2026 -
Akira Ransomware Group Targets Critical Infrastructure, Extracts $42 Million
The Akira ransomware group has been identified as a significant threat to critical infrastructure, with the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the FBI warning of its active ransomware…
9 articles · Updated November 14, 2025 -
GRU Compromises Home Routers in 23 States to Steal Outlook Credentials
The FBI and partners disrupted a covert network of compromised TP-Link and MikroTik routers exploited by the Russian GRU (APT28) to steal Outlook credentials. This operation, known as Operation Masquerade, revealed that…
6 articles · Updated May 22, 2026 -
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
100 articles · Updated November 15, 2025 -
Head Mare Hackers Exploit TrueConf Vulnerabilities to Deploy Backdoors
The Head Mare hacktivist group has breached TrueConf video conferencing servers, exploiting vulnerabilities to replace legitimate client installers with malicious versions containing backdoors. The attackers executed…
23 articles · Updated August 8, 2026 -
Widespread DNS Poisoning Campaign Targets Hotel Wi-Fi to Steal Credentials
A DNS poisoning campaign has compromised hotel and conference center Wi-Fi gateways to steal Microsoft 365 login credentials from corporate travelers. The campaign has been active since at least June 2026, affecting…
73 articles · Updated July 24, 2026 -
Russian FSB Exploits Vulnerable Routers to Target Critical Infrastructure
A joint advisory from 21 global cybersecurity agencies warns that Russian state hackers from the FSB's Center 16 are exploiting poorly configured routers to infiltrate critical infrastructure networks worldwide. The…
76 articles · Updated July 13, 2026 -
Russian Hackers Breach UK Government Email Accounts in Major Cyber Attack
A significant cyber attack attributed to Russian hackers has compromised the email accounts of UK government officials and Foreign Office staff, exposing sensitive systems and critical infrastructure. Named…
2 articles · Updated July 6, 2026 -
Critical Account Takeover Vulnerability in Red Hat Keycloak
A critical vulnerability (CVE-2026-18963) has been identified in the reset-credentials flow of the keycloak-services component of Red Hat Build of Keycloak. This flaw allows unauthenticated attackers to reset passwords…
7 articles · Updated August 21, 2026 -
17 Iranians Charged in Cyber Theft Campaign Targeting U.S. Institutions
The U.S. Department of Justice has unsealed a superseding indictment against 17 Iranian nationals linked to the Mabna Institute, alleging a coordinated cyber theft campaign on behalf of Iran's Islamic Revolutionary…
55 articles · Updated August 18, 2026
Recent Intelligence Reports
- Investigating Incidents Cybersecurity Evals — www.anthropic.com · September 2, 2026
- Identity-based attacks involved in 85% of education ransomware incidents — Intelligentciso · September 1, 2026
- Hackers Launch Password Spraying Attacks Against AWS Root Accounts at 150+ Organizations — Gbhackers · September 1, 2026
- Hackers Target AWS Root Accounts at 150+ Organizations in Password — Cybersecuritynews · September 1, 2026
- Identity-based attacks account for 85% of ransomware incidents in education, Sophos finds — Expresscomputer.In · August 31, 2026
- [SecurityIntel] 21 Aug | Active Exploitation of Zimbra CVE-2026 — Buttondown · August 21, 2026
- Security Fixes Updates And Advisories — trueconf.com · August 21, 2026
- Cve 2026 18963 — access.redhat.com · August 21, 2026